Legal and trust
Security Overview
Security practices for Reframe Visuals customer assets, account access, operational controls, and responsible disclosure.
Last updated: June 8, 2026
Asset handling
Customer assets are handled through controlled production workflows and are not shared outside authorized service delivery needs.
Access to project files is limited to personnel and systems required to complete, review, or support the order.
Transport and platform controls
The public site enforces HTTPS and security headers including HSTS, CSP, X-Frame-Options, Referrer-Policy, Permissions-Policy, and nosniff.
Administrative and portal actions use authenticated access controls and rate-limited API surfaces.
Operational safeguards
We monitor service health, review audit findings, and address security matters according to severity and customer impact.
Customers should use strong passwords, protect account access, and report suspicious activity quickly.
Responsible disclosure
Security concerns can be sent to [email protected] with enough detail to reproduce and assess the matter.
Please avoid destructive testing, data extraction, account takeover attempts, or privacy-impacting actions.